Outlook Potentially Hackable with Yubikey

Поделиться
HTML-код
  • Опубликовано: 27 окт 2024

Комментарии • 48

  • @Jupiter_Crash
    @Jupiter_Crash Год назад +4

    You’re a wonderful educator. Thank you for sharing your time and expertise!

    • @CyberMedics
      @CyberMedics  Год назад

      Thank you for commenting and subscribing. Let us know if you have any questions

  • @edisonting9278
    @edisonting9278 2 года назад +3

    You need add security key to "Additional Security: 2 steps verification" section. The "Ways to prove who you are" is just give you more options youto login.

    • @CyberMedics
      @CyberMedics  2 года назад +2

      You have to turn off the password. We did an updated video that shows turning off the password

  • @stormshadow0007
    @stormshadow0007 Год назад +3

    I'm extremely disappointed. I bought the yubikey just thinking about forcing access through it, but that is not possible.

    • @CyberMedics
      @CyberMedics  Год назад +1

      It is possible. You have to make the account passwordless. We have an updated video linked in the description. Please keep us updated and thans for subscribing

  • @JollyBuhay
    @JollyBuhay 2 года назад +1

    I thought about that too. Maybe Microsoft wants the user to choose whether they want to be secured or not.

  • @Sachz
    @Sachz 2 года назад +3

    Looks Like they completely remove the security key so you can no longer add it. They might've watched your video. Personally I don't think it was an issue I think Google Gmail implementation of this is worse

    • @CyberMedics
      @CyberMedics  2 года назад +1

      Thanks for commenting and subscribing. Please see our updated video on this: ruclips.net/video/0inIxNuZ638/видео.html
      What did you find lacking in Google's implementation? Appreciate the feedback

  • @CyberMedics
    @CyberMedics  2 года назад +1

    I was surprised outlook will not force you to use a key after you add it. Let me know if you have any questions.

    • @bb5236
      @bb5236 10 месяцев назад

      at 6:33 the screen prompt to select either of the 2 email address to receive code. On the same screen, there is an option that says "I have a code". What is that? Could that be used to bypass again?

    • @CyberMedics
      @CyberMedics  10 месяцев назад

      @@bb5236 That is just allowing you to select you have the code in case you already confirmed your email address and they sent the code to you. We did an update on this video: ruclips.net/video/0inIxNuZ638/видео.html Thanks for commenting and subscribing! Let us know if you have any questions.

  • @CyberMedics
    @CyberMedics  2 года назад +1

    Let me know what you think of Microsoft's Outlook implementation of a security key. Are you surprised it give you the option of logging in with your password & bypassing the key?

  • @jorgehenao3900
    @jorgehenao3900 2 года назад +2

    nice job hi from colombia

    • @CyberMedics
      @CyberMedics  2 года назад +1

      Hope all is well in Colombia! Encantada de que estés aquí. Would you please like the video and subscribe to the channel? This supports our efforts to help others with technology.

    • @CyberMedics
      @CyberMedics  2 года назад +1

      we created a new video based on passwordless outlook.com ruclips.net/video/0inIxNuZ638/видео.html. Would appreciate your feedback

    • @jorgehenao3900
      @jorgehenao3900 2 года назад +2

      @@CyberMedics ready bro new sub

    • @CyberMedics
      @CyberMedics  2 года назад +1

      @@jorgehenao3900 Gracias

  • @rogerp5201
    @rogerp5201 2 года назад +2

    Yubico has no live customer service. What little recording they have is useless and asks for phone # to reach back to you. It never happens. My advice is to avoid.

    • @CyberMedics
      @CyberMedics  2 года назад

      They have been ok with email support. It is probably the only way to communicate with them. Thanks for commenting and subscribing!

  • @lorenzogarcia6345
    @lorenzogarcia6345 8 месяцев назад +1

    In case to use the Yubikey as login device, you need to turn on passwordless and activate the mfa.

    • @CyberMedics
      @CyberMedics  8 месяцев назад +1

      Totally correct. We did an update to the video...linkedbin the description. Thanks for the feedback. Was surprised they didn't force passwordless, since the key is useless from a security standpoint wo it.

  • @matsandersson8888
    @matsandersson8888 2 года назад +1

    What if you apply Passwordless account, which shows as an option to the left of Two-step verification? Wouldn't that force you to use the security key?

    • @CyberMedics
      @CyberMedics  2 года назад

      Yes it would. Thanks for commenting and subscribing.

    • @CyberMedics
      @CyberMedics  2 года назад +4

      You are spot on! I went through the process of removing the password from the account. Once you do this, it request the PIN for your security key and to touch the key. This is being implemented in different ways for different services. Hard to keep it all straight. Thanks for pointing that out. My preferred method is to require a PW and security key. You can force Gmail to do this, but not Outlook.

    • @CyberMedics
      @CyberMedics  2 года назад

      Mats we created a new video based on passwordless outlook ruclips.net/video/0inIxNuZ638/видео.html. Would appreciate your feedback

    • @edonramadani8017
      @edonramadani8017 2 года назад +1

      @@CyberMedics what do u mean u can force gmail but not outlook? if i buy yubikey and secure my Outlook , im still not secured? because i have move from gmail to outlook because some people say outlook more secure? can you tell me please

    • @CyberMedics
      @CyberMedics  2 года назад +1

      @@edonramadani8017 Great comment. Once you implement the security key on Gmail you have to use your password and your security key to access the account.
      If you implement a security key on Outlook it will still allow you to log in with a password unless you move the account to a passwordless account. At that point you will be able to use the PIN of the security key and the key to authenticate to the account without a password. Please see the video link above for our updated video on this issue.ruclips.net/video/0inIxNuZ638/видео.html

  • @dbronx347
    @dbronx347 Год назад +1

    Microsoft makes it so hard to use security keys. I think they want to push the use of their authenticator app and their "password-less system" instead

    • @CyberMedics
      @CyberMedics  Год назад

      Absolutely. Totally agree. Google's implementation is straightforward. Thanks for commenting and subscribing. Please check out our video on MS convaluted implementation of bitlocker.

  • @superalien4781
    @superalien4781 Год назад +1

    i can't see this option on my hotmail web log in .

    • @CyberMedics
      @CyberMedics  Год назад

      You may want to watch our updated video on this, where we turn on passwordless for the account. Thanks for commenting & subscribing.

  • @kyuzworld
    @kyuzworld 2 года назад +1

    Thank you for this nice video

  • @côngphạm-x7g
    @côngphạm-x7g Год назад +1

    I need your help, my account has been hacked! thank you .

    • @CyberMedics
      @CyberMedics  Год назад

      Is it your Outlook account that was hacked?

    • @côngphạm-x7g
      @côngphạm-x7g Год назад

      @@CyberMedics yes !

    • @CyberMedics
      @CyberMedics  Год назад

      Sorry for the late reply, this just showed up. Any update on the account?

  • @Homelessnomad
    @Homelessnomad Год назад +1

    Can i download windows 10 on windows 11 system?

    • @CyberMedics
      @CyberMedics  Год назад

      Any system that supports Windows 11 will be backwards compatible with Windows 10. It's not going to be a simple process but you can install Windows 10 on the system.

  • @TechSLII
    @TechSLII 2 года назад +1

    Dude you need to use the passwordless account option

    • @CyberMedics
      @CyberMedics  2 года назад

      You're absolutely correct . You're just like me you don't read the descriptions of the videos . Thanks for commenting. ruclips.net/video/0inIxNuZ638/видео.html

  • @haydaruysal9416
    @haydaruysal9416 10 месяцев назад +1

    Ohhh seems Microsoft force People to use their srcurity app.

    • @CyberMedics
      @CyberMedics  10 месяцев назад

      You are correct.! Thanks for coming and subscribing. We appreciate the support. Have you used passwordless accounts with any of your logins?